CVE-2021-30072: Buffer Overflow
Published Apr 2, 2021
·Updated
An issue was discovered in prog.cgi on D-Link DIR-878 1.30B08 devices. Because strcat is misused, there is a stack-based buffer overflow that does not require authentication.
Affected Software
2 affected components
Dlink Dir-878 Firmware<=1.30b08
Dlink Dir-878=ax
Event History
Apr 2, 2021
CVE Published
via MITRE·07:55 PM
Data Sourced
via MITRE·07:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-30072?
CVE-2021-30072 has a high severity rating due to the potential for unauthenticated remote exploitation.
2
How do I fix CVE-2021-30072?
To fix CVE-2021-30072, upgrade the D-Link DIR-878 device firmware to a version later than 1.30B08.
3
Is CVE-2021-30072 exploitable remotely?
Yes, CVE-2021-30072 is exploitable remotely without the need for authentication.
4
What devices are affected by CVE-2021-30072?
CVE-2021-30072 affects D-Link DIR-878 devices with firmware version 1.30B08 and below.
5
What type of vulnerability is CVE-2021-30072?
CVE-2021-30072 is classified as a stack-based buffer overflow vulnerability.